Education Sector

BBC got to spectate ransomware negotiations with NetWalker

Oh, this is a bit different.  Joe Tidy of BBC reports that BBC got an anonymous tipoff about NetWalker’s ransomware negotiations with the University of California San Francisco and was able to spectate the chat negotiations. BBC’s report includes snippets of the negotiations such as when the uni counter-offered $780,000 to the threat actors’...

NYS: Comptroller’s audits continue: Urban Choice Charter School

For a number of years now, I’ve noted NYS comptroller audits of school districts when it comes to IT and infosecurity.  Here’s one that was recently released concerning Urban Choice Charter School in Rochester: Issued Date June 12, 2020 Audit Objective Determine whether the Board and School officials ensured information technology (IT) assets were...

UCSF admits it paid NetWalker more than $1 million ransom

On June 4, this site noted that NetWalker ransomware operators had added the University of California at San Francisco (UCSF) to their website where they name victims who have not paid their ransom demands. I did not expect the university to pay, commenting, at the time, “I wonder if the threat actors know how...

Jamesville-DeWitt High School student email list breached; explicit messages sent

Elizabeth Doran reports: DeWitt, N.Y. — The Jamesville-DeWitt High School email listserv was breached, and three “explicit” messages were sent to students, according to a notification the district sent to families. The messages were each one line, and contained vulgar language directed at school administrators, according to copies obtained by syracuse.com | The Post-Standard. They were...

FBI warns K12 schools of ransomware attacks via RDP

Catalin Cimpanu reports: The US Federal Bureau of Investigation sent out on Tuesday a security alert to K12 schools about the increase in ransomware attacks during the coronavirus (COVID-19) pandemic, and especially about ransomware gangs that abuse RDP connections to break into school systems. The alert, called a Private Industry Notification, or PIN, tells...